22:47:46.0312 2444 TDSS rootkit removing tool 2.7.1.0 Jan 13 2012 15:24:05 22:47:46.0733 2444 ============================================================ 22:47:46.0733 2444 Current date / time: 2012/01/13 22:47:46.0723 22:47:46.0733 2444 SystemInfo: 22:47:46.0733 2444 22:47:46.0733 2444 OS Version: 5.1.2600 ServicePack: 3.0 22:47:46.0733 2444 Product type: Workstation 22:47:46.0733 2444 ComputerName: VOYAGER 22:47:46.0733 2444 UserName: admin 22:47:46.0733 2444 Windows directory: C:\WINDOWS 22:47:46.0733 2444 System windows directory: C:\WINDOWS 22:47:46.0733 2444 Processor architecture: Intel x86 22:47:46.0733 2444 Number of processors: 1 22:47:46.0733 2444 Page size: 0x1000 22:47:46.0733 2444 Boot type: Normal boot 22:47:46.0733 2444 ============================================================ 22:47:48.0666 2444 Drive \Device\Harddisk0\DR0 - Size: 0x953C94000, SectorSize: 0x200, Cylinders: 0x1306, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K', Flags 0x00000054 22:47:48.0696 2444 Drive \Device\Harddisk1\DR1 - Size: 0x12A3F92000, SectorSize: 0x200, Cylinders: 0x2605, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K', Flags 0x00000054 22:47:48.0976 2444 Initialize success 22:48:18.0098 1020 ============================================================ 22:48:18.0098 1020 Scan started 22:48:18.0098 1020 Mode: Manual; 22:48:18.0098 1020 ============================================================ 22:48:18.0559 1020 Abiosdsk - ok 22:48:18.0629 1020 abp480n5 - ok 22:48:18.0769 1020 ACPI (d31241e64dba17d1642739993e14d2f3) C:\WINDOWS\system32\DRIVERS\ACPI.sys 22:48:18.0779 1020 Suspicious file (Forged): C:\WINDOWS\system32\DRIVERS\ACPI.sys. Real md5: d31241e64dba17d1642739993e14d2f3, Fake md5: 05118282f5d039595a2b92b4a4afe197 22:48:18.0779 1020 ACPI ( Virus.Win32.Rloader.a ) - infected 22:48:18.0779 1020 ACPI - detected Virus.Win32.Rloader.a (0) 22:48:18.0939 1020 ACPIEC (66a42b7db194e24b973bbcce840a0f3f) C:\WINDOWS\system32\drivers\ACPIEC.sys 22:48:18.0939 1020 ACPIEC - ok 22:48:19.0069 1020 adpu160m - ok 22:48:19.0200 1020 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 22:48:19.0210 1020 aec - ok 22:48:19.0330 1020 AegisP (2c5c22990156a1063e19ad162191dc1d) C:\WINDOWS\system32\DRIVERS\AegisP.sys 22:48:19.0340 1020 AegisP - ok 22:48:19.0500 1020 AFD (322d0e36693d6e24a2398bee62a268cd) C:\WINDOWS\System32\drivers\afd.sys 22:48:19.0500 1020 AFD - ok 22:48:19.0600 1020 Aha154x - ok 22:48:19.0911 1020 aic78u2 - ok 22:48:19.0961 1020 aic78xx - ok 22:48:20.0041 1020 AliIde - ok 22:48:20.0101 1020 AmdK7 (6f41705041a671feb1fc8cfbadbb90ca) C:\WINDOWS\system32\DRIVERS\amdk7.sys 22:48:20.0111 1020 AmdK7 - ok 22:48:20.0181 1020 amsint - ok 22:48:20.0331 1020 AR5211 (9108f38c07f4953ea4ee89243e787cad) C:\WINDOWS\system32\DRIVERS\ar5211.sys 22:48:20.0381 1020 AR5211 - ok 22:48:20.0481 1020 asc - ok 22:48:20.0551 1020 asc3350p - ok 22:48:20.0622 1020 asc3550 - ok 22:48:20.0712 1020 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 22:48:20.0712 1020 AsyncMac - ok 22:48:20.0892 1020 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 22:48:20.0912 1020 atapi - ok 22:48:20.0982 1020 Atdisk - ok 22:48:21.0062 1020 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 22:48:21.0072 1020 Atmarpc - ok 22:48:21.0192 1020 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 22:48:21.0192 1020 audstub - ok 22:48:21.0303 1020 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 22:48:21.0303 1020 Beep - ok 22:48:21.0423 1020 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 22:48:21.0423 1020 cbidf2k - ok 22:48:21.0493 1020 cd20xrnt - ok 22:48:21.0583 1020 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 22:48:21.0583 1020 Cdaudio - ok 22:48:21.0713 1020 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 22:48:21.0713 1020 Cdfs - ok 22:48:21.0793 1020 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 22:48:21.0803 1020 Cdrom - ok 22:48:21.0873 1020 Changer - ok 22:48:21.0943 1020 CmdIde - ok 22:48:22.0034 1020 Cpqarray - ok 22:48:22.0084 1020 dac2w2k - ok 22:48:22.0144 1020 dac960nt - ok 22:48:22.0234 1020 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 22:48:22.0234 1020 Disk - ok 22:48:22.0434 1020 dmboot (bc9219abc5696942e6f9ac8a9b28670f) C:\WINDOWS\system32\drivers\dmboot.sys 22:48:22.0494 1020 dmboot - ok 22:48:22.0745 1020 dmio (5fa232e3ba6e1346f9f5a7e519320cb0) C:\WINDOWS\system32\drivers\dmio.sys 22:48:22.0755 1020 dmio - ok 22:48:22.0835 1020 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 22:48:22.0835 1020 dmload - ok 22:48:22.0955 1020 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 22:48:22.0965 1020 DMusic - ok 22:48:23.0065 1020 dpti2o - ok 22:48:23.0135 1020 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 22:48:23.0145 1020 drmkaud - ok 22:48:23.0295 1020 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 22:48:23.0295 1020 Fastfat - ok 22:48:23.0406 1020 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 22:48:23.0406 1020 Fdc - ok 22:48:23.0486 1020 Fips (09e2a4d33f81a06a8aab2ba0a0b5d235) C:\WINDOWS\system32\drivers\Fips.sys 22:48:23.0486 1020 Fips - ok 22:48:23.0576 1020 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 22:48:23.0586 1020 Flpydisk - ok 22:48:23.0656 1020 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 22:48:23.0656 1020 FltMgr - ok 22:48:23.0766 1020 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 22:48:23.0766 1020 Fs_Rec - ok 22:48:23.0926 1020 Ftdisk (ed6d921d8ab423138fb35beee6d6a6cb) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 22:48:23.0956 1020 Ftdisk - ok 22:48:24.0087 1020 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 22:48:24.0087 1020 Gpc - ok 22:48:24.0217 1020 hpn - ok 22:48:24.0327 1020 HPZid412 (30ca91e657cede2f95359d6ef186f650) C:\WINDOWS\system32\DRIVERS\HPZid412.sys 22:48:24.0327 1020 HPZid412 - ok 22:48:24.0447 1020 HPZipr12 (efd31afa752aa7c7bbb57bcbe2b01c78) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys 22:48:24.0457 1020 HPZipr12 - ok 22:48:24.0597 1020 HPZius12 (7ac43c38ca8fd7ed0b0a4466f753e06e) C:\WINDOWS\system32\DRIVERS\HPZius12.sys 22:48:24.0597 1020 HPZius12 - ok 22:48:24.0707 1020 HTTP (f6aacf5bce2893e0c1754afeb672e5c9) C:\WINDOWS\system32\Drivers\HTTP.sys 22:48:24.0717 1020 HTTP - ok 22:48:24.0778 1020 i2omgmt - ok 22:48:24.0858 1020 i2omp - ok 22:48:24.0948 1020 i8042prt (177b372af55c4460d0968b5f1d02aa1c) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 22:48:24.0948 1020 i8042prt - ok 22:48:25.0028 1020 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 22:48:25.0038 1020 Imapi - ok 22:48:25.0118 1020 ini910u - ok 22:48:25.0188 1020 IntelIde - ok 22:48:25.0268 1020 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 22:48:25.0268 1020 ip6fw - ok 22:48:25.0368 1020 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 22:48:25.0378 1020 IpFilterDriver - ok 22:48:25.0499 1020 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 22:48:25.0499 1020 IpInIp - ok 22:48:25.0589 1020 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 22:48:25.0599 1020 IpNat - ok 22:48:25.0699 1020 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 22:48:25.0709 1020 IPSec - ok 22:48:25.0789 1020 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 22:48:25.0799 1020 IRENUM - ok 22:48:25.0879 1020 isapnp (c8eef2e93835b81bd335de2123121283) C:\WINDOWS\system32\DRIVERS\isapnp.sys 22:48:25.0879 1020 isapnp - ok 22:48:25.0969 1020 Kbdclass (2aeca45d4aeaacbdcb77ad11184e4601) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 22:48:25.0979 1020 Kbdclass - ok 22:48:26.0079 1020 kl1 (cd6a8fa9395460ffe7fd8881a6c67254) C:\WINDOWS\system32\drivers\kl1.sys 22:48:26.0079 1020 kl1 - ok 22:48:26.0220 1020 klbg (f9089982ed97340984e3dd60edd75490) C:\WINDOWS\system32\drivers\klbg.sys 22:48:26.0220 1020 klbg - ok 22:48:26.0320 1020 KLIF (2627c389ba33065b2e98118ce9d71e57) C:\WINDOWS\system32\DRIVERS\klif.sys 22:48:26.0330 1020 KLIF - ok 22:48:26.0460 1020 klim5 (cd16a39c6f61c2ae0272e1f431353bf7) C:\WINDOWS\system32\DRIVERS\klim5.sys 22:48:26.0460 1020 klim5 - ok 22:48:26.0570 1020 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 22:48:26.0580 1020 kmixer - ok 22:48:26.0670 1020 KSecDD (1705745d900dabf2d89f90ebaddc7517) C:\WINDOWS\system32\drivers\KSecDD.sys 22:48:26.0670 1020 KSecDD - ok 22:48:26.0810 1020 lbrtfdc - ok 22:48:27.0011 1020 MBAMProtector (b7ca8cc3f978201856b6ab82f40953c3) C:\WINDOWS\system32\drivers\mbam.sys 22:48:27.0011 1020 MBAMProtector - ok 22:48:27.0461 1020 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 22:48:27.0471 1020 mnmdd - ok 22:48:27.0582 1020 Modem (4a068db7dc37d5afedb6512d2931d7b3) C:\WINDOWS\system32\drivers\Modem.sys 22:48:27.0592 1020 Modem - ok 22:48:27.0672 1020 Mouclass (fbed3df6b884f8cf00447b73507f2c48) C:\WINDOWS\system32\DRIVERS\mouclass.sys 22:48:27.0682 1020 Mouclass - ok 22:48:27.0762 1020 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 22:48:27.0762 1020 MountMgr - ok 22:48:27.0832 1020 mraid35x - ok 22:48:27.0922 1020 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 22:48:27.0932 1020 MRxDAV - ok 22:48:28.0042 1020 MRxSmb (dfeca6ddd50e5226740e12aaea1c90aa) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 22:48:28.0072 1020 MRxSmb - ok 22:48:28.0152 1020 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 22:48:28.0152 1020 Msfs - ok 22:48:28.0243 1020 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 22:48:28.0253 1020 MSKSSRV - ok 22:48:28.0363 1020 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 22:48:28.0363 1020 MSPCLOCK - ok 22:48:28.0463 1020 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 22:48:28.0473 1020 MSPQM - ok 22:48:28.0573 1020 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 22:48:28.0573 1020 mssmbios - ok 22:48:28.0673 1020 Mup (2f625d11385b1a94360bfc70aaefdee1) C:\WINDOWS\system32\drivers\Mup.sys 22:48:28.0683 1020 Mup - ok 22:48:28.0823 1020 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 22:48:28.0823 1020 NDIS - ok 22:48:28.0903 1020 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 22:48:28.0903 1020 NdisTapi - ok 22:48:29.0014 1020 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 22:48:29.0024 1020 Ndisuio - ok 22:48:29.0124 1020 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 22:48:29.0124 1020 NdisWan - ok 22:48:29.0234 1020 NDProxy (6215023940cfd3702b46abc304e1d45a) C:\WINDOWS\system32\drivers\NDProxy.sys 22:48:29.0234 1020 NDProxy - ok 22:48:29.0324 1020 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 22:48:29.0324 1020 NetBIOS - ok 22:48:29.0434 1020 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 22:48:29.0444 1020 NetBT - ok 22:48:29.0574 1020 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 22:48:29.0574 1020 Npfs - ok 22:48:29.0705 1020 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 22:48:29.0745 1020 Ntfs - ok 22:48:29.0875 1020 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 22:48:29.0885 1020 Null - ok 22:48:30.0265 1020 nv (ba1b732c1a70cfea0c1b64f2850bf44f) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 22:48:30.0526 1020 nv - ok 22:48:30.0676 1020 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 22:48:30.0686 1020 NwlnkFlt - ok 22:48:30.0756 1020 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 22:48:30.0766 1020 NwlnkFwd - ok 22:48:30.0886 1020 Parport (2d4cdaebced17743aa9e25d3016dc229) C:\WINDOWS\system32\DRIVERS\parport.sys 22:48:30.0886 1020 Parport - ok 22:48:30.0966 1020 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 22:48:30.0966 1020 PartMgr - ok 22:48:31.0077 1020 ParVdm (453ec2c2a20a1382f564541918520eeb) C:\WINDOWS\system32\drivers\ParVdm.sys 22:48:31.0077 1020 ParVdm - ok 22:48:31.0177 1020 PCI (6862c69168d787b85a7d95ccd33c694e) C:\WINDOWS\system32\DRIVERS\pci.sys 22:48:31.0187 1020 PCI - ok 22:48:31.0277 1020 PCIDump - ok 22:48:31.0327 1020 PCIIde - ok 22:48:31.0547 1020 Pcmcia (8db27f1ae9593c94095485305a583862) C:\WINDOWS\system32\drivers\Pcmcia.sys 22:48:31.0557 1020 Pcmcia - ok 22:48:31.0657 1020 PDCOMP - ok 22:48:31.0708 1020 PDFRAME - ok 22:48:31.0768 1020 PDRELI - ok 22:48:31.0818 1020 PDRFRAME - ok 22:48:31.0898 1020 perc2 - ok 22:48:31.0988 1020 perc2hib - ok 22:48:32.0138 1020 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 22:48:32.0148 1020 PptpMiniport - ok 22:48:32.0248 1020 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 22:48:32.0248 1020 PSched - ok 22:48:32.0328 1020 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 22:48:32.0328 1020 Ptilink - ok 22:48:32.0429 1020 ql1080 - ok 22:48:32.0499 1020 Ql10wnt - ok 22:48:32.0559 1020 ql12160 - ok 22:48:32.0619 1020 ql1240 - ok 22:48:32.0689 1020 ql1280 - ok 22:48:32.0779 1020 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 22:48:32.0779 1020 RasAcd - ok 22:48:32.0899 1020 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 22:48:32.0909 1020 Rasl2tp - ok 22:48:32.0979 1020 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 22:48:32.0999 1020 RasPppoe - ok 22:48:33.0410 1020 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 22:48:33.0410 1020 Raspti - ok 22:48:33.0510 1020 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 22:48:33.0520 1020 Rdbss - ok 22:48:33.0610 1020 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 22:48:33.0610 1020 RDPCDD - ok 22:48:33.0730 1020 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 22:48:33.0730 1020 rdpdr - ok 22:48:33.0871 1020 RDPWD (6728e45b66f93c08f11de2e316fc70dd) C:\WINDOWS\system32\drivers\RDPWD.sys 22:48:33.0871 1020 RDPWD - ok 22:48:34.0011 1020 redbook (e0c7bbd18040b58651bac700c804861d) C:\WINDOWS\system32\DRIVERS\redbook.sys 22:48:34.0021 1020 redbook - ok 22:48:34.0251 1020 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 22:48:34.0251 1020 Secdrv - ok 22:48:34.0351 1020 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 22:48:34.0351 1020 serenum - ok 22:48:34.0461 1020 Serial (d07b02f88165e69b9f17162cf592c8a6) C:\WINDOWS\system32\DRIVERS\serial.sys 22:48:34.0471 1020 Serial - ok 22:48:34.0552 1020 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 22:48:34.0552 1020 Sfloppy - ok 22:48:34.0662 1020 Simbad - ok 22:48:34.0712 1020 Sparrow - ok 22:48:34.0802 1020 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 22:48:34.0812 1020 splitter - ok 22:48:34.0932 1020 sr (eb032822be406ef220d546ddffcf0002) C:\WINDOWS\system32\DRIVERS\sr.sys 22:48:34.0932 1020 sr - ok 22:48:35.0052 1020 Srv (5252605079810904e31c332e241cd59b) C:\WINDOWS\system32\DRIVERS\srv.sys 22:48:35.0072 1020 Srv - ok 22:48:35.0203 1020 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 22:48:35.0213 1020 swenum - ok 22:48:35.0313 1020 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 22:48:35.0323 1020 swmidi - ok 22:48:35.0423 1020 symc810 - ok 22:48:35.0493 1020 symc8xx - ok 22:48:35.0563 1020 sym_hi - ok 22:48:35.0613 1020 sym_u3 - ok 22:48:35.0723 1020 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 22:48:35.0733 1020 sysaudio - ok 22:48:35.0924 1020 Tcpip (93ea8d04ec73a85db02eb8805988f733) C:\WINDOWS\system32\DRIVERS\tcpip.sys 22:48:35.0934 1020 Tcpip - ok 22:48:36.0024 1020 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 22:48:36.0024 1020 TDPIPE - ok 22:48:36.0134 1020 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 22:48:36.0134 1020 TDTCP - ok 22:48:36.0224 1020 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 22:48:36.0234 1020 TermDD - ok 22:48:36.0354 1020 TosIde - ok 22:48:36.0454 1020 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 22:48:36.0464 1020 Udfs - ok 22:48:36.0564 1020 ultra - ok 22:48:36.0675 1020 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 22:48:36.0705 1020 Update - ok 22:48:36.0805 1020 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 22:48:36.0815 1020 usbccgp - ok 22:48:36.0945 1020 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 22:48:36.0945 1020 usbhub - ok 22:48:37.0045 1020 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 22:48:37.0055 1020 usbprint - ok 22:48:37.0185 1020 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 22:48:37.0195 1020 usbscan - ok 22:48:37.0296 1020 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 22:48:37.0296 1020 USBSTOR - ok 22:48:37.0416 1020 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 22:48:37.0426 1020 usbuhci - ok 22:48:37.0496 1020 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 22:48:37.0506 1020 VgaSave - ok 22:48:37.0576 1020 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 22:48:37.0576 1020 viaagp - ok 22:48:37.0746 1020 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 22:48:37.0746 1020 ViaIde - ok 22:48:37.0926 1020 VIAudio (819bf44085104be6527b86a88acf856b) C:\WINDOWS\system32\drivers\ac97via.sys 22:48:37.0926 1020 VIAudio - ok 22:48:38.0047 1020 VolSnap (56b191ac5fc0df219949c95a6c87afe7) C:\WINDOWS\system32\drivers\VolSnap.sys 22:48:38.0047 1020 VolSnap - ok 22:48:38.0177 1020 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 22:48:38.0187 1020 Wanarp - ok 22:48:38.0287 1020 WDICA - ok 22:48:38.0377 1020 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 22:48:38.0377 1020 wdmaud - ok 22:48:38.0557 1020 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk0\DR0 22:48:38.0758 1020 \Device\Harddisk0\DR0 - ok 22:48:38.0798 1020 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk1\DR1 22:48:38.0818 1020 \Device\Harddisk1\DR1 - ok 22:48:38.0908 1020 Boot (0x1200) (7974beb05af52e6af24d8d75764d3ee6) \Device\Harddisk0\DR0\Partition0 22:48:38.0918 1020 \Device\Harddisk0\DR0\Partition0 - ok 22:48:38.0998 1020 Boot (0x1200) (40821241db5e21c1d62bd56237e01489) \Device\Harddisk0\DR0\Partition1 22:48:38.0998 1020 \Device\Harddisk0\DR0\Partition1 - ok 22:48:39.0038 1020 Boot (0x1200) (789033da7fbb4cc30fbdf2eebed9c371) \Device\Harddisk1\DR1\Partition0 22:48:39.0048 1020 \Device\Harddisk1\DR1\Partition0 - ok 22:48:39.0078 1020 Boot (0x1200) (bd78ad773b8172b70d4e5f466d423a24) \Device\Harddisk1\DR1\Partition1 22:48:39.0078 1020 \Device\Harddisk1\DR1\Partition1 - ok 22:48:39.0108 1020 Boot (0x1200) (b98abdbba1b29353efc2b13da3c43ba0) \Device\Harddisk1\DR1\Partition2 22:48:39.0108 1020 \Device\Harddisk1\DR1\Partition2 - ok 22:48:39.0118 1020 ============================================================ 22:48:39.0118 1020 Scan finished 22:48:39.0118 1020 ============================================================ 22:48:39.0168 3388 Detected object count: 1 22:48:39.0168 3388 Actual detected object count: 1 22:48:46.0379 3388 ACPI ( Virus.Win32.Rloader.a ) - skipped by user 22:48:46.0379 3388 ACPI ( Virus.Win32.Rloader.a ) - User select action: Skip 22:49:12.0566 3804 ============================================================ 22:49:12.0566 3804 Scan started 22:49:12.0566 3804 Mode: Manual; 22:49:12.0566 3804 ============================================================ 22:49:12.0877 3804 Abiosdsk - ok 22:49:12.0977 3804 abp480n5 - ok 22:49:13.0107 3804 ACPI (d31241e64dba17d1642739993e14d2f3) C:\WINDOWS\system32\DRIVERS\ACPI.sys 22:49:13.0107 3804 Suspicious file (Forged): C:\WINDOWS\system32\DRIVERS\ACPI.sys. Real md5: d31241e64dba17d1642739993e14d2f3, Fake md5: 05118282f5d039595a2b92b4a4afe197 22:49:13.0117 3804 ACPI ( Virus.Win32.Rloader.a ) - infected 22:49:13.0117 3804 ACPI - detected Virus.Win32.Rloader.a (0) 22:49:13.0227 3804 ACPIEC (66a42b7db194e24b973bbcce840a0f3f) C:\WINDOWS\system32\drivers\ACPIEC.sys 22:49:13.0227 3804 ACPIEC - ok 22:49:13.0407 3804 adpu160m - ok 22:49:13.0538 3804 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 22:49:13.0538 3804 aec - ok 22:49:13.0668 3804 AegisP (2c5c22990156a1063e19ad162191dc1d) C:\WINDOWS\system32\DRIVERS\AegisP.sys 22:49:13.0668 3804 AegisP - ok 22:49:13.0818 3804 AFD (322d0e36693d6e24a2398bee62a268cd) C:\WINDOWS\System32\drivers\afd.sys 22:49:13.0828 3804 AFD - ok 22:49:13.0908 3804 Aha154x - ok 22:49:14.0008 3804 aic78u2 - ok 22:49:14.0108 3804 aic78xx - ok 22:49:14.0269 3804 AliIde - ok 22:49:14.0379 3804 AmdK7 (6f41705041a671feb1fc8cfbadbb90ca) C:\WINDOWS\system32\DRIVERS\amdk7.sys 22:49:14.0379 3804 AmdK7 - ok 22:49:14.0569 3804 amsint - ok 22:49:14.0749 3804 AR5211 (9108f38c07f4953ea4ee89243e787cad) C:\WINDOWS\system32\DRIVERS\ar5211.sys 22:49:14.0769 3804 AR5211 - ok 22:49:14.0890 3804 asc - ok 22:49:14.0970 3804 asc3350p - ok 22:49:15.0080 3804 asc3550 - ok 22:49:15.0200 3804 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 22:49:15.0210 3804 AsyncMac - ok 22:49:15.0320 3804 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 22:49:15.0350 3804 atapi - ok 22:49:15.0480 3804 Atdisk - ok 22:49:15.0601 3804 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 22:49:15.0601 3804 Atmarpc - ok 22:49:15.0751 3804 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 22:49:15.0761 3804 audstub - ok 22:49:15.0961 3804 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 22:49:15.0971 3804 Beep - ok 22:49:16.0121 3804 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 22:49:16.0121 3804 cbidf2k - ok 22:49:16.0191 3804 cd20xrnt - ok 22:49:16.0322 3804 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 22:49:16.0322 3804 Cdaudio - ok 22:49:16.0542 3804 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 22:49:16.0542 3804 Cdfs - ok 22:49:16.0652 3804 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 22:49:16.0652 3804 Cdrom - ok 22:49:16.0772 3804 Changer - ok 22:49:16.0902 3804 CmdIde - ok 22:49:17.0063 3804 Cpqarray - ok 22:49:17.0193 3804 dac2w2k - ok 22:49:17.0303 3804 dac960nt - ok 22:49:17.0513 3804 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 22:49:17.0523 3804 Disk - ok 22:49:17.0774 3804 dmboot (bc9219abc5696942e6f9ac8a9b28670f) C:\WINDOWS\system32\drivers\dmboot.sys 22:49:17.0794 3804 dmboot - ok 22:49:17.0964 3804 dmio (5fa232e3ba6e1346f9f5a7e519320cb0) C:\WINDOWS\system32\drivers\dmio.sys 22:49:17.0974 3804 dmio - ok 22:49:18.0104 3804 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 22:49:18.0104 3804 dmload - ok 22:49:18.0264 3804 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 22:49:18.0274 3804 DMusic - ok 22:49:18.0455 3804 dpti2o - ok 22:49:18.0555 3804 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 22:49:18.0555 3804 drmkaud - ok 22:49:18.0765 3804 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 22:49:18.0775 3804 Fastfat - ok 22:49:18.0895 3804 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 22:49:18.0905 3804 Fdc - ok 22:49:18.0996 3804 Fips (09e2a4d33f81a06a8aab2ba0a0b5d235) C:\WINDOWS\system32\drivers\Fips.sys 22:49:19.0006 3804 Fips - ok 22:49:19.0116 3804 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 22:49:19.0126 3804 Flpydisk - ok 22:49:19.0246 3804 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 22:49:19.0256 3804 FltMgr - ok 22:49:19.0346 3804 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 22:49:19.0346 3804 Fs_Rec - ok 22:49:19.0506 3804 Ftdisk (ed6d921d8ab423138fb35beee6d6a6cb) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 22:49:19.0506 3804 Ftdisk - ok 22:49:19.0656 3804 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 22:49:19.0656 3804 Gpc - ok 22:49:19.0887 3804 hpn - ok 22:49:20.0007 3804 HPZid412 (30ca91e657cede2f95359d6ef186f650) C:\WINDOWS\system32\DRIVERS\HPZid412.sys 22:49:20.0017 3804 HPZid412 - ok 22:49:20.0167 3804 HPZipr12 (efd31afa752aa7c7bbb57bcbe2b01c78) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys 22:49:20.0177 3804 HPZipr12 - ok 22:49:20.0307 3804 HPZius12 (7ac43c38ca8fd7ed0b0a4466f753e06e) C:\WINDOWS\system32\DRIVERS\HPZius12.sys 22:49:20.0307 3804 HPZius12 - ok 22:49:20.0498 3804 HTTP (f6aacf5bce2893e0c1754afeb672e5c9) C:\WINDOWS\system32\Drivers\HTTP.sys 22:49:20.0518 3804 HTTP - ok 22:49:20.0638 3804 i2omgmt - ok 22:49:20.0738 3804 i2omp - ok 22:49:20.0878 3804 i8042prt (177b372af55c4460d0968b5f1d02aa1c) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 22:49:20.0878 3804 i8042prt - ok 22:49:20.0978 3804 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 22:49:20.0988 3804 Imapi - ok 22:49:21.0169 3804 ini910u - ok 22:49:21.0289 3804 IntelIde - ok 22:49:21.0419 3804 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 22:49:21.0419 3804 ip6fw - ok 22:49:21.0559 3804 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 22:49:21.0559 3804 IpFilterDriver - ok 22:49:21.0709 3804 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 22:49:21.0709 3804 IpInIp - ok 22:49:21.0830 3804 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 22:49:21.0840 3804 IpNat - ok 22:49:21.0970 3804 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 22:49:21.0970 3804 IPSec - ok 22:49:22.0090 3804 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 22:49:22.0090 3804 IRENUM - ok 22:49:22.0210 3804 isapnp (c8eef2e93835b81bd335de2123121283) C:\WINDOWS\system32\DRIVERS\isapnp.sys 22:49:22.0220 3804 isapnp - ok 22:49:22.0360 3804 Kbdclass (2aeca45d4aeaacbdcb77ad11184e4601) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 22:49:22.0360 3804 Kbdclass - ok 22:49:22.0541 3804 kl1 (cd6a8fa9395460ffe7fd8881a6c67254) C:\WINDOWS\system32\drivers\kl1.sys 22:49:22.0541 3804 kl1 - ok 22:49:22.0701 3804 klbg (f9089982ed97340984e3dd60edd75490) C:\WINDOWS\system32\drivers\klbg.sys 22:49:22.0701 3804 klbg - ok 22:49:22.0841 3804 KLIF (2627c389ba33065b2e98118ce9d71e57) C:\WINDOWS\system32\DRIVERS\klif.sys 22:49:22.0841 3804 KLIF - ok 22:49:23.0001 3804 klim5 (cd16a39c6f61c2ae0272e1f431353bf7) C:\WINDOWS\system32\DRIVERS\klim5.sys 22:49:23.0001 3804 klim5 - ok 22:49:23.0141 3804 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 22:49:23.0151 3804 kmixer - ok 22:49:23.0262 3804 KSecDD (1705745d900dabf2d89f90ebaddc7517) C:\WINDOWS\system32\drivers\KSecDD.sys 22:49:23.0272 3804 KSecDD - ok 22:49:23.0412 3804 lbrtfdc - ok 22:49:23.0612 3804 MBAMProtector (b7ca8cc3f978201856b6ab82f40953c3) C:\WINDOWS\system32\drivers\mbam.sys 22:49:23.0612 3804 MBAMProtector - ok 22:49:23.0822 3804 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 22:49:23.0832 3804 mnmdd - ok 22:49:23.0963 3804 Modem (4a068db7dc37d5afedb6512d2931d7b3) C:\WINDOWS\system32\drivers\Modem.sys 22:49:23.0963 3804 Modem - ok 22:49:24.0063 3804 Mouclass (fbed3df6b884f8cf00447b73507f2c48) C:\WINDOWS\system32\DRIVERS\mouclass.sys 22:49:24.0073 3804 Mouclass - ok 22:49:24.0163 3804 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 22:49:24.0163 3804 MountMgr - ok 22:49:24.0233 3804 mraid35x - ok 22:49:24.0353 3804 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 22:49:24.0363 3804 MRxDAV - ok 22:49:24.0553 3804 MRxSmb (dfeca6ddd50e5226740e12aaea1c90aa) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 22:49:24.0574 3804 MRxSmb - ok 22:49:24.0704 3804 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 22:49:24.0714 3804 Msfs - ok 22:49:24.0884 3804 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 22:49:24.0884 3804 MSKSSRV - ok 22:49:25.0034 3804 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 22:49:25.0034 3804 MSPCLOCK - ok 22:49:25.0144 3804 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 22:49:25.0154 3804 MSPQM - ok 22:49:25.0295 3804 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 22:49:25.0295 3804 mssmbios - ok 22:49:25.0405 3804 Mup (2f625d11385b1a94360bfc70aaefdee1) C:\WINDOWS\system32\drivers\Mup.sys 22:49:25.0415 3804 Mup - ok 22:49:25.0625 3804 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 22:49:25.0625 3804 NDIS - ok 22:49:25.0725 3804 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 22:49:25.0725 3804 NdisTapi - ok 22:49:25.0875 3804 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 22:49:25.0875 3804 Ndisuio - ok 22:49:25.0986 3804 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 22:49:25.0996 3804 NdisWan - ok 22:49:26.0126 3804 NDProxy (6215023940cfd3702b46abc304e1d45a) C:\WINDOWS\system32\drivers\NDProxy.sys 22:49:26.0136 3804 NDProxy - ok 22:49:26.0236 3804 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 22:49:26.0236 3804 NetBIOS - ok 22:49:26.0356 3804 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 22:49:26.0366 3804 NetBT - ok 22:49:26.0586 3804 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 22:49:26.0586 3804 Npfs - ok 22:49:26.0757 3804 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 22:49:26.0767 3804 Ntfs - ok 22:49:26.0927 3804 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 22:49:26.0927 3804 Null - ok 22:49:27.0337 3804 nv (ba1b732c1a70cfea0c1b64f2850bf44f) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 22:49:27.0428 3804 nv - ok 22:49:27.0628 3804 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 22:49:27.0638 3804 NwlnkFlt - ok 22:49:27.0758 3804 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 22:49:27.0758 3804 NwlnkFwd - ok 22:49:27.0908 3804 Parport (2d4cdaebced17743aa9e25d3016dc229) C:\WINDOWS\system32\DRIVERS\parport.sys 22:49:27.0908 3804 Parport - ok 22:49:28.0028 3804 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 22:49:28.0039 3804 PartMgr - ok 22:49:28.0169 3804 ParVdm (453ec2c2a20a1382f564541918520eeb) C:\WINDOWS\system32\drivers\ParVdm.sys 22:49:28.0169 3804 ParVdm - ok 22:49:28.0339 3804 PCI (6862c69168d787b85a7d95ccd33c694e) C:\WINDOWS\system32\DRIVERS\pci.sys 22:49:28.0339 3804 PCI - ok 22:49:28.0399 3804 PCIDump - ok 22:49:28.0509 3804 PCIIde - ok 22:49:28.0639 3804 Pcmcia (8db27f1ae9593c94095485305a583862) C:\WINDOWS\system32\drivers\Pcmcia.sys 22:49:28.0639 3804 Pcmcia - ok 22:49:28.0750 3804 PDCOMP - ok 22:49:28.0850 3804 PDFRAME - ok 22:49:28.0950 3804 PDRELI - ok 22:49:29.0050 3804 PDRFRAME - ok 22:49:29.0200 3804 perc2 - ok 22:49:29.0300 3804 perc2hib - ok 22:49:29.0641 3804 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 22:49:29.0641 3804 PptpMiniport - ok 22:49:29.0771 3804 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 22:49:29.0781 3804 PSched - ok 22:49:29.0891 3804 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 22:49:29.0891 3804 Ptilink - ok 22:49:30.0001 3804 ql1080 - ok 22:49:30.0071 3804 Ql10wnt - ok 22:49:30.0162 3804 ql12160 - ok 22:49:30.0262 3804 ql1240 - ok 22:49:30.0312 3804 ql1280 - ok 22:49:30.0422 3804 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 22:49:30.0422 3804 RasAcd - ok 22:49:30.0642 3804 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 22:49:30.0652 3804 Rasl2tp - ok 22:49:30.0802 3804 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 22:49:30.0812 3804 RasPppoe - ok 22:49:30.0973 3804 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 22:49:30.0983 3804 Raspti - ok 22:49:31.0123 3804 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 22:49:31.0123 3804 Rdbss - ok 22:49:31.0243 3804 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 22:49:31.0243 3804 RDPCDD - ok 22:49:31.0433 3804 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 22:49:31.0433 3804 rdpdr - ok 22:49:31.0644 3804 RDPWD (6728e45b66f93c08f11de2e316fc70dd) C:\WINDOWS\system32\drivers\RDPWD.sys 22:49:31.0654 3804 RDPWD - ok 22:49:31.0844 3804 redbook (e0c7bbd18040b58651bac700c804861d) C:\WINDOWS\system32\DRIVERS\redbook.sys 22:49:31.0854 3804 redbook - ok 22:49:32.0215 3804 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 22:49:32.0215 3804 Secdrv - ok 22:49:32.0425 3804 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 22:49:32.0435 3804 serenum - ok 22:49:32.0605 3804 Serial (d07b02f88165e69b9f17162cf592c8a6) C:\WINDOWS\system32\DRIVERS\serial.sys 22:49:32.0615 3804 Serial - ok 22:49:32.0715 3804 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 22:49:32.0715 3804 Sfloppy - ok 22:49:32.0865 3804 Simbad - ok 22:49:32.0966 3804 Sparrow - ok 22:49:33.0096 3804 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 22:49:33.0096 3804 splitter - ok 22:49:33.0266 3804 sr (eb032822be406ef220d546ddffcf0002) C:\WINDOWS\system32\DRIVERS\sr.sys 22:49:33.0266 3804 sr - ok 22:49:33.0426 3804 Srv (5252605079810904e31c332e241cd59b) C:\WINDOWS\system32\DRIVERS\srv.sys 22:49:33.0436 3804 Srv - ok 22:49:33.0677 3804 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 22:49:33.0677 3804 swenum - ok 22:49:33.0777 3804 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 22:49:33.0777 3804 swmidi - ok 22:49:33.0927 3804 symc810 - ok 22:49:34.0017 3804 symc8xx - ok 22:49:34.0107 3804 sym_hi - ok 22:49:34.0227 3804 sym_u3 - ok 22:49:34.0348 3804 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 22:49:34.0348 3804 sysaudio - ok 22:49:34.0618 3804 Tcpip (93ea8d04ec73a85db02eb8805988f733) C:\WINDOWS\system32\DRIVERS\tcpip.sys 22:49:34.0628 3804 Tcpip - ok 22:49:34.0768 3804 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 22:49:34.0778 3804 TDPIPE - ok 22:49:34.0898 3804 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 22:49:34.0898 3804 TDTCP - ok 22:49:35.0049 3804 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 22:49:35.0049 3804 TermDD - ok 22:49:35.0199 3804 TosIde - ok 22:49:35.0339 3804 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 22:49:35.0349 3804 Udfs - ok 22:49:35.0469 3804 ultra - ok 22:49:35.0639 3804 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 22:49:35.0649 3804 Update - ok 22:49:35.0850 3804 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 22:49:35.0850 3804 usbccgp - ok 22:49:36.0020 3804 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 22:49:36.0030 3804 usbhub - ok 22:49:36.0230 3804 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 22:49:36.0230 3804 usbprint - ok 22:49:36.0380 3804 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 22:49:36.0380 3804 usbscan - ok 22:49:36.0491 3804 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 22:49:36.0491 3804 USBSTOR - ok 22:49:36.0671 3804 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 22:49:36.0671 3804 usbuhci - ok 22:49:36.0761 3804 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 22:49:36.0761 3804 VgaSave - ok 22:49:36.0871 3804 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 22:49:36.0871 3804 viaagp - ok 22:49:37.0001 3804 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 22:49:37.0001 3804 ViaIde - ok 22:49:37.0152 3804 VIAudio (819bf44085104be6527b86a88acf856b) C:\WINDOWS\system32\drivers\ac97via.sys 22:49:37.0162 3804 VIAudio - ok 22:49:37.0282 3804 VolSnap (56b191ac5fc0df219949c95a6c87afe7) C:\WINDOWS\system32\drivers\VolSnap.sys 22:49:37.0282 3804 VolSnap - ok 22:49:37.0532 3804 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 22:49:37.0542 3804 Wanarp - ok 22:49:37.0662 3804 WDICA - ok 22:49:37.0793 3804 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 22:49:37.0793 3804 wdmaud - ok 22:49:38.0123 3804 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk0\DR0 22:49:38.0333 3804 \Device\Harddisk0\DR0 - ok 22:49:38.0383 3804 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk1\DR1 22:49:38.0393 3804 \Device\Harddisk1\DR1 - ok 22:49:38.0443 3804 Boot (0x1200) (7974beb05af52e6af24d8d75764d3ee6) \Device\Harddisk0\DR0\Partition0 22:49:38.0453 3804 \Device\Harddisk0\DR0\Partition0 - ok 22:49:38.0564 3804 Boot (0x1200) (40821241db5e21c1d62bd56237e01489) \Device\Harddisk0\DR0\Partition1 22:49:38.0564 3804 \Device\Harddisk0\DR0\Partition1 - ok 22:49:38.0614 3804 Boot (0x1200) (789033da7fbb4cc30fbdf2eebed9c371) \Device\Harddisk1\DR1\Partition0 22:49:38.0614 3804 \Device\Harddisk1\DR1\Partition0 - ok 22:49:38.0664 3804 Boot (0x1200) (bd78ad773b8172b70d4e5f466d423a24) \Device\Harddisk1\DR1\Partition1 22:49:38.0664 3804 \Device\Harddisk1\DR1\Partition1 - ok 22:49:38.0694 3804 Boot (0x1200) (b98abdbba1b29353efc2b13da3c43ba0) \Device\Harddisk1\DR1\Partition2 22:49:38.0704 3804 \Device\Harddisk1\DR1\Partition2 - ok 22:49:38.0714 3804 ============================================================ 22:49:38.0714 3804 Scan finished 22:49:38.0714 3804 ============================================================ 22:49:38.0804 3360 Detected object count: 1 22:49:38.0804 3360 Actual detected object count: 1 22:49:42.0880 3360 ACPI ( Virus.Win32.Rloader.a ) - skipped by user 22:49:42.0880 3360 ACPI ( Virus.Win32.Rloader.a ) - User select action: Skip 22:51:11.0287 2716 Deinitialize success